网址重写导致Magento管理员无法访问

时间:2010-10-29 19:17:00

标签: php apache .htaccess magento

我在root中的子目录中有magento,如果我将安全基本URL和安全基本url链接设置为正确的共享ssl url以启用安全页面,我在FRONTEND中没有问题。页面按原样显示。但是,当我尝试使用下面的安全链接访问管理员时,我无法获得准入。

例如在前端:http://mydomain.com/shop变为http://mydomain.com - 这是正确的。

https://mydomain.sharedssl.com/shop/customer/account/login/变成了 https://mydomain.sharedssl.com/customer/account/login/ - 这是正确的。

但是我可以使用https://mydomain.com/shop/index.php/admin/https://mydomain.com//index.php/admin/

来访问管理员

在根目录中,我在htaccess中有这个:

RewriteEngine On
RewriteBase /
RewriteCond %{REQUEST_URI} !^/shop(.*)
RewriteRule (.*) /shop/$1 [L]

在商店(Magento),我有以下内容:

############################################
## uncomment these lines for CGI mode
## make sure to specify the correct cgi php binary file name
## it might be /cgi-bin/php-cgi

#    Action php5-cgi /cgi-bin/php5-cgi
#    AddHandler php5-cgi .php

############################################
## GoDaddy specific options

#   Options -MultiViews

## you might also need to add this line to php.ini
##     cgi.fix_pathinfo = 1
## if it still doesn't work, rename php.ini to php5.ini

############################################
## this line is specific for 1and1 hosting

    #AddType x-mapp-php5 .php
    #AddHandler x-mapp-php5 .php

############################################
## default index file

    DirectoryIndex index.php

<IfModule mod_php5.c>

############################################
## adjust memory limit

#    php_value memory_limit 64M
    php_value memory_limit 128M
    php_value max_execution_time 18000

############################################
## disable magic quotes for php request vars

    php_flag magic_quotes_gpc off

############################################
## disable automatic session start
## before autoload was initialized

    php_flag session.auto_start off

############################################
## enable resulting html compression

    #php_flag zlib.output_compression on

###########################################
# disable user agent verification to not break multiple image upload

    php_flag suhosin.session.cryptua off

###########################################
# turn off compatibility with PHP4 when dealing with objects

    php_flag zend.ze1_compatibility_mode Off

</IfModule>

<IfModule mod_security.c>
###########################################
# disable POST processing to not break multiple image upload

    SecFilterEngine Off
    SecFilterScanPOST Off
</IfModule>

<IfModule mod_deflate.c>

############################################
## enable apache served files compression
## http://developer.yahoo.com/performance/rules.html#gzip

    # Insert filter on all content
    ###SetOutputFilter DEFLATE
    # Insert filter on selected content types only
    #AddOutputFilterByType DEFLATE text/html text/plain text/xml text/css text/javascript

    # Netscape 4.x has some problems...
    #BrowserMatch ^Mozilla/4 gzip-only-text/html

    # Netscape 4.06-4.08 have some more problems
    #BrowserMatch ^Mozilla/4\.0[678] no-gzip

    # MSIE masquerades as Netscape, but it is fine
    #BrowserMatch \bMSIE !no-gzip !gzip-only-text/html

    # Don't compress images
    #SetEnvIfNoCase Request_URI \.(?:gif|jpe?g|png)$ no-gzip dont-vary

    # Make sure proxies don't deliver the wrong content
    #Header append Vary User-Agent env=!dont-vary

</IfModule>

<IfModule mod_ssl.c>

############################################
## make HTTPS env vars available for CGI mode

    #SSLOptions StdEnvVars

</IfModule>

<IfModule mod_rewrite.c>

############################################
## enable rewrites

    Options +FollowSymLinks
    RewriteEngine on

############################################
## you can put here your magento root folder
## path relative to web root

    RewriteBase /


############################################
## workaround for HTTP authorization
## in CGI environment

    RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}]

############################################
## always send 404 on missing files in these folders

    RewriteCond %{REQUEST_URI} !^/(media|skin|js)/

############################################
## never rewrite for existing files, directories and links

    RewriteCond %{REQUEST_FILENAME} !-f
    RewriteCond %{REQUEST_FILENAME} !-d
    RewriteCond %{REQUEST_FILENAME} !-l

############################################
## rewrite everything else to index.php

    RewriteRule  ^(.*)$ /shop/index.php [L]



</IfModule>


############################################
## Prevent character encoding issues from server overrides
## If you still have problems, use the second line instead

    AddDefaultCharset Off
    #AddDefaultCharset UTF-8

<IfModule mod_expires.c>

############################################
## Add default Expires header
## http://developer.yahoo.com/performance/rules.html#expires

    ExpiresDefault "access plus 1 year"

</IfModule>

############################################
## By default allow all access

    Order allow,deny
    Allow from all

############################################
## If running in cluster environment, uncomment this
## http://developer.yahoo.com/performance/rules.html#etags

    #FileETag none 

有人可以帮助让它在Magento后端工作吗?

2 个答案:

答案 0 :(得分:1)

问题在于获取REQUEST_URI环境变量值并使用SCRIPT_FILENAMESCRIPT_NAME环境变量值进行检查。在您的情况下,REQUEST_URI是/index.php/stddadmin/,SCRIPT_NAME的SCRIPT_FILENAME等于/shop/index.php,Magento无法检索控制器匹配的路径信息。因此问题的原因是在请求路径中添加了/index.php/前缀,并且Magento url生成具有为admin管理的硬编码值。

您的问题只有两种解决方案:

  1. 覆盖_updatePathUseRewrites模型中名为Mage_Core_Model_Store的方法,如下例所示:

     class Your_CustomModule_Model_Store extends Mage_Core_Model_Store 
     {
         protected _updatePathUseRewrites($url) 
         {
             return $url; // Return passed variable without adding index.php as prefix 
         }
     }
    

    在这种情况下,您的管理面板将在/ admin / url中提供,就像通常的前端页面一样。

  2. 重新组织项目结构,以便将Magento放置在根文件夹中,或者在根目录中为每个文件和文件夹添加符号链接。

答案 1 :(得分:0)

您还可以使用“管理员重写”扩展程序来删除后端网址中的“index.php”: http://www.magentocommerce.com/magento-connect/clockworkgeek/extension/3692/clockworkgeek_adminrewrites

它可以在后端启用URL重写,并且工作正常。唯一的缺点是它被标记为“Beta”,因为它会覆盖“Mage_Core_Model_Store”。